Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Iphone_os
(Apple)Repositories |
• https://github.com/madler/zlib
• https://github.com/file/file • https://github.com/WebKit/webkit • https://github.com/vadz/libtiff |
#Vulnerabilities | 3366 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2019-03-05 | CVE-2019-6208 | A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, tvOS 12.1.2. A malicious application may cause unexpected changes in memory shared between processes. | Iphone_os, Mac_os_x, Tv_os | 5.5 | ||
2019-03-04 | CVE-2019-6206 | An issue existed with autofill resuming after it was canceled. The issue was addressed with improved state management. This issue is fixed in iOS 12.1.3. Password autofill may fill in passwords after they were manually cleared. | Iphone_os | 9.8 | ||
2019-03-05 | CVE-2019-6202 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, watchOS 5.1.3. A malicious application may be able to elevate privileges. | Iphone_os, Mac_os_x, Watchos | 7.8 | ||
2019-03-05 | CVE-2019-6200 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3. An attacker in a privileged network position may be able to execute arbitrary code. | Iphone_os, Mac_os_x | 8.8 | ||
2018-08-07 | CVE-2018-5383 | Bluetooth firmware or operating system software drivers in macOS versions before 10.13, High Sierra and iOS versions before 11.4, and Android versions before the 2018-06-05 patch may not sufficiently validate elliptic curve parameters used to generate public keys during a Diffie-Hellman key exchange, which may allow a remote attacker to obtain the encryption key used by the device. | Iphone_os, Mac_os_x, Android | 6.8 | ||
2019-04-03 | CVE-2018-4465 | A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1, macOS Mojave 10.14.2, tvOS 12.1.1, watchOS 5.1.2. | Iphone_os, Mac_os_x | 7.8 | ||
2019-04-03 | CVE-2018-4464 | Multiple memory corruption issues were addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, Safari 12.0.2, iTunes 12.9.2 for Windows, iCloud for Windows 7.9. | Icloud, Iphone_os, Itunes, Safari, Tvos, Watchos | 8.8 | ||
2019-04-03 | CVE-2018-4461 | A memory corruption issue was addressed with improved input validation. This issue affected versions prior to iOS 12.1.1, macOS Mojave 10.14.2, tvOS 12.1.1, watchOS 5.1.2. | Iphone_os, Mac_os_x, Tvos, Watchos | 7.8 | ||
2019-04-03 | CVE-2018-4460 | A denial of service issue was addressed by removing the vulnerable code. This issue affected versions prior to iOS 12.1.1, macOS Mojave 10.14.2, tvOS 12.1.1, watchOS 5.1.2. | Iphone_os, Mac_os_x, Tvos, Watchos | 6.5 | ||
2019-04-03 | CVE-2018-4447 | A memory corruption issue was addressed with improved state management. This issue affected versions prior to iOS 12.1.1, macOS Mojave 10.14.2, tvOS 12.1.1, watchOS 5.1.2. | Iphone_os, Mac_os_x, Tvos, Watchos | 7.8 |